⤷ Title: Secure SDLC Stages
════════════════════════
𐀪 Author: Zachary Lindop
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 22:36:06 GMT
════════════════════════
⌗ Tags: #sdlc_methodologies #sdlc #cybersecurity
════════════════════════
𐀪 Author: Zachary Lindop
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 22:36:06 GMT
════════════════════════
⌗ Tags: #sdlc_methodologies #sdlc #cybersecurity
Medium
Secure SDLC Stages
A Secure Software Development Lifecycle integrates security practices into each stage of software development, starting with the Initiation…
⤷ Title: ImageGen: Forensic Artifacts to be Found in ChatGPT’s New Tool
════════════════════════
𐀪 Author: FE2O3
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 22:29:11 GMT
════════════════════════
⌗ Tags: #ai_generated_content #digital_forensics #cybersecurity #image_metadata #chatgpt
════════════════════════
𐀪 Author: FE2O3
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 22:29:11 GMT
════════════════════════
⌗ Tags: #ai_generated_content #digital_forensics #cybersecurity #image_metadata #chatgpt
Medium
ImageGen: Forensic Artifacts to be Found in ChatGPT’s New Tool
On March 25, 2025, OpenAI announced the release of its GPT-4o Image Generation tool for all ChatGPT users. Before this update, only ChatGPT…
⤷ Title: How to Integrate Threat Intelligence Tools Into Your Security Operations
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 22:16:02 GMT
════════════════════════
⌗ Tags: #programming #tools #cybersecurity #careers #threat_intelligence
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 22:16:02 GMT
════════════════════════
⌗ Tags: #programming #tools #cybersecurity #careers #threat_intelligence
Medium
How to Integrate Threat Intelligence Tools Into Your Security Operations
Practical Steps for Real-Time Detection, Contextual Enrichment, and Automated Defense
⤷ Title: Juice Jacking Is Real: How to Charge Your Phone in Public Without Giving Away Your Data
════════════════════════
𐀪 Author: BiyteLüm
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 22:06:15 GMT
════════════════════════
⌗ Tags: #data_privacy #privacy #technology #cybersecurity #cybercrime
════════════════════════
𐀪 Author: BiyteLüm
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 22:06:15 GMT
════════════════════════
⌗ Tags: #data_privacy #privacy #technology #cybersecurity #cybercrime
Medium
Juice Jacking Is Real: How to Charge Your Phone in Public Without Giving Away Your Data
Picture this: you’re at the airport, you look down and your phone is at 5%, and you look over and see a public charging station. You plug…
⤷ Title: MS Sentinel: Just Looking: TryHackMe Answers
════════════════════════
𐀪 Author: Ansul Kotadia
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 23:27:22 GMT
════════════════════════
⌗ Tags: #ms_sentinel #tryhackme_writeup #tryhackme_walkthrough #ms_sentinel_tryhackme #tryhackme
════════════════════════
𐀪 Author: Ansul Kotadia
════════════════════════
ⴵ Time: Mon, 14 Apr 2025 23:27:22 GMT
════════════════════════
⌗ Tags: #ms_sentinel #tryhackme_writeup #tryhackme_walkthrough #ms_sentinel_tryhackme #tryhackme
Medium
MS Sentinel: Just Looking: TryHackMe Answers
Scenario: You are a SOC Analyst and/or SIEM practitioner or maybe a Cloud Security Engineer. What we know is incidents have been firing in…
⤷ Title: Kerbeus-BOF: Beacon Object Files for Kerberos abuse
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:35:08 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #Beacon Object Files #BOF #Cobalt Strike #Havoc. #Kerberos abuse #Kerbeus BOF
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:35:08 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #Beacon Object Files #BOF #Cobalt Strike #Havoc. #Kerberos abuse #Kerbeus BOF
Penetration Testing Tools
Kerbeus-BOF: Beacon Object Files for Kerberos abuse
Beacon Object Files for Kerberos abuse. This is an implementation of some important features of the Rubeus project, written in C.
⤷ Title: V’ger: AI/ML Security in Your Arsenal
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:20:22 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #AI security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:20:22 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #AI security
Penetration Testing Tools
V'ger: AI/ML Security in Your Arsenal
V'ger is an interactive command-line application for post-exploitation of authenticated Jupyter instances with a focus on AI/ML security operations
⤷ Title: PyPI Swiftly Patches Privilege Escalation Flaw in Organizations Feature
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 01:48:26 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Organizations #patch #privilege escalation #PyPI #Python #security incident
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 01:48:26 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Organizations #patch #privilege escalation #PyPI #Python #security incident
Daily CyberSecurity
PyPI Swiftly Patches Privilege Escalation Flaw in Organizations Feature
PyPI resolved a security issue on April 14, 2025, where users retained team privileges after organization removal. The swift 2-hour fix prevented potential escalation.
⤷ Title: CrushFTP Hit by SSRF and Directory Traversal Vulnerabilities (CVE-2025-32102 & CVE-2025-32103)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:55:17 +0000
════════════════════════
⌗ Tags: #Vulnerability #CrushFTP #CVE_2025_32102 #CVE_2025_32103 #cyberattack #Directory Traversal #file server vulnerability #File Transfer #secure file transfer #security #ssrf #UNC path
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:55:17 +0000
════════════════════════
⌗ Tags: #Vulnerability #CrushFTP #CVE_2025_32102 #CVE_2025_32103 #cyberattack #Directory Traversal #file server vulnerability #File Transfer #secure file transfer #security #ssrf #UNC path
Daily CyberSecurity
CrushFTP Hit by SSRF and Directory Traversal Vulnerabilities (CVE-2025-32102 & CVE-2025-32103)
CrushFTP vulnerabilities CVE-2025-32102 & CVE-2025-32103 enable SSRF and directory traversal. Update now to secure your file transfer server
⤷ Title: Browser Wallet Flaws Allow Silent Crypto Drains Without User Interaction
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:50:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #browser wallet vulnerability #Coin98 #Coinspect report #crypto wallet #CVE_2023_40580 #Freighter Wallet #Frontier Wallet #recovery phrase leak #Web3 security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:50:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #browser wallet vulnerability #Coin98 #Coinspect report #crypto wallet #CVE_2023_40580 #Freighter Wallet #Frontier Wallet #recovery phrase leak #Web3 security
Daily CyberSecurity
Browser Wallet Flaws Allow Silent Crypto Drains Without User Interaction
Coinspect reveals flaws in browser wallets like Freighter and Coin98 that let attackers drain crypto without phishing, clicks, or wallet connection.
⤷ Title: CVE-2025-24859 (CVSSv4 10): Apache Roller Flaw Exposes Blogs to Unauthorized Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:45:38 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apache Roller #blog security #CVE_2025_24859 #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:45:38 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apache Roller #blog security #CVE_2025_24859 #Web Security
Daily CyberSecurity
CVE-2025-24859 (CVSSv4 10): Apache Roller Flaw Exposes Blogs to Unauthorized Access
Apache Roller has a security vulnerability (CVE-2025-24859) where sessions aren't invalidated after password changes, risking unauthorized access
⤷ Title: Vulnerabilities in Solar Power Systems Threaten Power Grids
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:35:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #grid stability #renewable energy #Solar power systems #Vulnerabilities
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:35:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #grid stability #renewable energy #Solar power systems #Vulnerabilities
Daily CyberSecurity
Vulnerabilities in Solar Power Systems Threaten Power Grids
A Forescout report reveals critical vulnerabilities in solar power systems that could be exploited to destabilize power grids and compromise user data.
⤷ Title: DarkHotel APT Group’s Evolving Attack Techniques
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:35:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #cyber_espionage #cyberattack #DarkHotel #malware #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:35:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #cyber_espionage #cyberattack #DarkHotel #malware #threat intelligence
Daily CyberSecurity
DarkHotel APT Group's Evolving Attack Techniques
The Knownsec 404 team reports on the DarkHotel APT group's latest attacks, featuring upgraded frameworks and sophisticated evasion techniques.
⤷ Title: China-Nexus APT Exploits Ivanti Connect Secure VPN in Global Cyber Espionage Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:33:50 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT #china #CVE_2025_0282 #CVE_2025_22457 #cyber_espionage #cybersecurity #Ivanti #SPAWNCHIMERA #vpn
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:33:50 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT #china #CVE_2025_0282 #CVE_2025_22457 #cyber_espionage #cybersecurity #Ivanti #SPAWNCHIMERA #vpn
Daily CyberSecurity
China-Nexus APT Exploits Ivanti Connect Secure VPN in Global Cyber Espionage Campaign
A China-nexus APT group exploited Ivanti Connect Secure VPN vulnerabilities to infiltrate organizations globally, deploying the SPAWNCHIMERA malware toolkit
⤷ Title: Fake Font Domain Used in Credit Card Skimming Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:19:10 +0000
════════════════════════
⌗ Tags: #Malware #Credit card skimming #e_commerce security #malware #Website Security #wordpress security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:19:10 +0000
════════════════════════
⌗ Tags: #Malware #Credit card skimming #e_commerce security #malware #Website Security #wordpress security
Daily CyberSecurity
Fake Font Domain Used in Credit Card Skimming Attack
Sucuri discovered a credit card skimming attack using a fake font domain to steal credit card data from a WordPress website.
⤷ Title: Subdomain Takeovers: A Growing Supply Chain Threat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:10:23 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cloud Security #cybersecurity #Dangling DNS #dns #Subdomain takeover #Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:10:23 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cloud Security #cybersecurity #Dangling DNS #dns #Subdomain takeover #Supply Chain
Daily CyberSecurity
Subdomain Takeovers: A Growing Supply Chain Threat
Subdomain takeovers are evolving into a serious supply chain threat, allowing attackers to inject malicious content.
⤷ Title: DAMASCENED PEACOCK: NCSC Uncovers Sophisticated Malware Targeting UK MOD
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:05:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #COM Hijack #cyber_espionage #cybersecurity #DAMASCENED PEACOCK #malware #Malware Analysis #NCSC #spear_phishing #UK MOD
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:05:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #COM Hijack #cyber_espionage #cybersecurity #DAMASCENED PEACOCK #malware #Malware Analysis #NCSC #spear_phishing #UK MOD
Daily CyberSecurity
DAMASCENED PEACOCK: NCSC Uncovers Sophisticated Malware Targeting UK MOD
The NCSC reveals DAMASCENED PEACOCK, a sophisticated malware targeting the UK MOD, using spear-phishing, code signing, and COM Hijacking.
⤷ Title: IRC — Ports 194,6667,6660–7000 — How to exploit?
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:06:54 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #irc #penetration_testing #exploit
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:06:54 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #irc #penetration_testing #exploit
Medium
IRC — Ports 194,6667,6660–7000 — How to exploit?
✨ Free link
⤷ Title: PortSwigger Academy
════════════════════════
𐀪 Author: BRENO SANTANA BRUNO
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 01:36:09 GMT
════════════════════════
⌗ Tags: #web_hacking #it #portswigger #burpsuite #hacking
════════════════════════
𐀪 Author: BRENO SANTANA BRUNO
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 01:36:09 GMT
════════════════════════
⌗ Tags: #web_hacking #it #portswigger #burpsuite #hacking
Medium
PortSwigger Academy
Path: Authentication vulnerabilities
⤷ Title: A website for Osint investigators and ethical hackers
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:42:53 GMT
════════════════════════
⌗ Tags: #osint #investigation #tips #hacking #cybersecurity
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:42:53 GMT
════════════════════════
⌗ Tags: #osint #investigation #tips #hacking #cybersecurity
Medium
A website for Osint investigators and ethical hackers
This will provide tools and new techniques, resources for cybersecurity investigators
⤷ Title: LM, NTLM y NTLMv2 bajo la lupa: cómo atacarlo y cómo defenderlo
════════════════════════
𐀪 Author: Dante_hunter
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:03:49 GMT
════════════════════════
⌗ Tags: #technology #computer_science #microsoft #hacking #cibersecurity
════════════════════════
𐀪 Author: Dante_hunter
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:03:49 GMT
════════════════════════
⌗ Tags: #technology #computer_science #microsoft #hacking #cibersecurity
Medium
LM, NTLM y NTLMv2 bajo la lupa: cómo atacarlo y cómo defenderlo
Introducción